A cloud-native SIEM solution that provides intelligent security analytics and threat detection across systems
Azure Lighthouse can still be used for delegated management of Sentinel resources in the Azure portal, but that delegation does not provide the required access model for Sentinel when using the Microsoft Defender portal.
For MSSP / multitenant scenarios, Microsoft currently recommends using Microsoft Entra B2B authentication and configuring Microsoft Defender multitenant management instead.
The customer Sentinel workspace should be onboarded to the Defender portal in the customer tenant, and cross-tenant access should then be provided using the supported Defender multitenant management model.
The Microsoft documentation explicitly states:
So the issue appears to be a platform limitation rather than an Azure Lighthouse RBAC configuration issue.